As a Vendor Risk Professional you'll support Third-Party Management Services 'TPMS' and assist senior risk professionals and the Senior Manager of Third Party and Sourcing in managing a sub-portfolio of external suppliers performing services to the Bank. You'll manage the full life cycle for third-party management processes from onboarding to managing existing third-party relationships, building risk assessment, assessing controls, and reviewing third-parties based on required regulations. You will evaluate third-parties and build rating-based risk profiles, facilitate due diligence questionnaires, and obtain various approvals for your assigned supplier portfolio category. You'll monitor requirements in accordance with the defined framework and work with various risk control partners such as Information Security/IT; Fraud, Business Continuity, Compliance, Privacy and Legal. Manage the daily third-party management operations. Ensure the department follows the strategic direction, prioritization, mission, and vision of the TPMS and its policies and procedures. Work within our GRC platform for use in core operations, including third-party onboarding, tracking, analytics, and performance management. Monitor adherence to the Third-Party Management Policy by reviewing and maintaining third-party documentation to ensure accuracy and completeness. Serve as a single point of contact for TPMS related questions and issues and interact with multiple internal stakeholders and third-parties throughout the lifecycle. Build close relationships with business owners to understand their strategy or direction and collect the due diligence review results. Facilitate contract review between business partners, third-parties, and legal. Prepare documents, support internal/external discussions regarding third-party management issues, and maintain third-party compliance and approval of third-party access. Leverage standard frameworks such as NIST, ISO, COBIT, policies, standards, and procedures to recommend mitigating control to meet regulatory requirements specifically SOX, CCPA, GDPR, PCI. Work with Legal to define and build contract term playbook library. Assist in tracking and reporting of score cards and SLAs. Develop, implement, monitor, and report performance measures that demonstrate value and ensure third-party performance. Act as a primary liaison with the business and TPRM 2nd Line to build risk assessment and required control as well as align the outstanding issues to the risk assessment and monitor the resolution of issues. Assist procurement services teams to ensure compliance with Third-Party management policy, sourcing, and negotiated agreements relating to core operations services and products.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Career Level
Mid Level
Industry
Credit Intermediation and Related Activities
Education Level
Bachelor's degree